Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
74 results
GDA-android-reversing-Tool preview

GDA-android-reversing-Tool

GitHubcharles2gan/gda-android-reversing-tool

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which…

android-securityctfdynamic-analysis-sandboxing+9
4.8k
5 months ago
Ropper preview

Ropper

GitHubsashs/ropper

Display information about files in different file formats and find gadgets to build rop chains for different architectures (x86/x86_64, ARM/ARM64,…

binary-analysisbinary-exploitationctf+3
2.2k1 month ago
PcapXray preview

PcapXray

GitHubsrixivas/pcapxray

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

ctfdns-analysiseducation+7
1.9k5 months ago
goshs preview

goshs

GitHubgoshs-labs/goshs

Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP…

command-and-controlctfdns-analysis+5
9865 days ago
BGGP preview

BGGP

GitHubbinarygolf/bggp

Annual small file competition repository with binary golf challenges across themes like polyglots, crashes, self-replication, and downloads,…

binary-exploitationctfeducation+3
865 months ago
CVE-2026-46215-POC preview

CVE-2026-46215-POC

GitHub0xcyberstan/cve-2026-46215-poc

Exploit for CVE-2026-46215, a Linux kernel DRM GEM use-after-free local privilege escalation. Uses racing, slab spraying, and Dirty Pipe-style file…

binary-exploitationctfeducation+4
113 months ago
CVE-2022-44268 preview

CVE-2022-44268

GitHubentr0pie/cve-2022-44268

Proof-of-concept exploit for ImageMagick arbitrary file read vulnerability (CVE-2022-44268) via crafted PNG textual chunks, enabling extraction of…

ctfeducationexploitation+2
133 years ago
Code-Roulette preview

Code-Roulette

GitHubsorcerio/code-roulette

Code Roulette is a terminal interface based (TUI), online multiplayer, Russian Roulette game where the loser executes the winner's Python payload…

command-and-controlctfeducation+3
78 months ago
Metabase_CVE-2021-41277 preview

Metabase_CVE-2021-41277

GitHubvulnmachines/metabase_cve-2021-41277

Exploit for Metabase CVE-2021-41277, a local file inclusion vulnerability in custom GeoJSON map support, allowing unauthorized file access.

ctfcurated-resourceseducation+3
44 years ago
CVE-2024-23346 preview

CVE-2024-23346

GitHub9carlo6/cve-2024-23346

This repository contains a Crystallographic Information File (CIF) intended for use on the "Chemistry" machine on Hack The Box (HTB).

ctfeducationexploitation+2
41 year ago
CVE-2026-48908 preview

CVE-2026-48908

GitHubbayu06802/cve-2026-48908

Proof-of-concept exploit for CVE-2026-48908, an unauthenticated RCE in Joomla SP Page Builder via arbitrary file upload, with adaptive payload…

ctfeducationexploitation+4
2 months ago
CVE-2025-4138_tarfile_filter_bypass preview

CVE-2025-4138_tarfile_filter_bypass

GitHubthefizzyfish/cve-2025-4138_tarfile_filter_bypass

CVE-2025-4138 - Python Arbitrary file write outside extraction directory

ctfexploitationpayload-generation+3
47 months ago
LFI-Destruction preview

LFI-Destruction

GitHubrevshellxd/lfi-destruction

This program Prompts you for the Local File Inclusion information and will automatically search the /etc/passwd and using the users names found will…

ctfeducationexploitation+8
47 months ago
CVE-2024-23346-exploit preview

CVE-2024-23346-exploit

GitHubdavidaroca27/cve-2024-23346-exploit

This is a exploit for the known Remote Code Execution (RCE) vulnerability in the `pymatgen` (CVE-2024-23346) Python library by uploading a malicious…

ctfexploitationpayload-generation+3
41 year ago
CVE-2024-32258 preview

CVE-2024-32258

GitHubsecnotes/cve-2024-32258

Proof-of-concept exploit for CVE-2024-32258, a path traversal vulnerability in FCEUX NetPlay 2.7.0 enabling unauthenticated remote arbitrary file…

ctfeducationexploitation+3
31 year ago
CVE-2025-49132-poc preview

CVE-2025-49132-poc

GitHub0xtensho/cve-2025-49132-poc

Proof-of-concept exploit for CVE-2025-49132, abusing a file inclusion vulnerability in Pterodactyl to achieve remote code execution via pearcmd.php.

ctfeducationexploitation+3
36 months ago
blind-xxe-controller-CVE-2021-29447 preview

blind-xxe-controller-CVE-2021-29447

GitHubelf1337/blind-xxe-controller-cve-2021-29447

Arbitrary file read controller based on CVE-2021-29447

ctfexploitationvulnerability-analysis+2
33 years ago
php_filter_chain_oracle_poc preview

php_filter_chain_oracle_poc

GitHub4xura/php_filter_chain_oracle_poc

PoC scripts to exploit LFR (Local File Read) via PHP filters chain oracle (php://filter), especially for CTF purposes or the exploit of…

ctfexploitationinformation-gathering+3
21 year ago
Previous12345Next